A pretty sweet vulnerability scanner
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Python-based extension for integrating a Yara scanner into Burp Suite for on-demand website scans based on custom rules.
A tool that finds unprotected secrets in container images or file systems, matching against a database of 140 secret types.
A series of small test cases designed to exercise different parts of a static security analyzer
An extensible, heuristic-based vulnerability scanning tool for installed npm packages.
tfsec is being replaced by Trivy, a more comprehensive open-source security solution
NoSQLMap is a Python tool for auditing and automating injection attacks on NoSQL databases.
A tool for detecting and exploiting vulnerabilities in web applications
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.